EditPDFEasy

Privacy Policy

What data this site processes, why, and what rights you have over it. Your files never leave your device.

In short

Your files are not uploaded to any server: they are processed in your browser and we have no access to them.

There are no accounts or forms. Cookies that are not strictly necessary, such as analytics or advertising cookies, are only used if you accept them.

We only process personal data in a few cases: the technical data any web server receives when you visit it, your cookie choices and, if you accept them, the data collected through the tags we load, the email you send us if you write to us, and the data Ko-fi passes to us if you make a voluntary contribution.

Each case is detailed below, with its purpose, its legal basis and how long the data is kept.

Data controller

Controller: José Luis Rodríguez Pérez, in a personal capacity, owner of the website editpdfeasy.com.

Contact: [email protected]

This policy meets the duty to inform under Articles 13 and 14 of Regulation (EU) 2016/679 (GDPR) and Article 11 of Spanish Organic Law 3/2018 (LOPDGDD). No data protection officer has been appointed because it is not mandatory in this case; you can contact the controller directly at the email above.

Your files

Your files are processed entirely in your browser. They are not uploaded to any server, we do not receive or store them, and we have no access to their content. For that reason we do not process any personal data those files may contain.

While you use a tool, your files exist only in your browser's memory. We do not store them in cookies or local storage. The result is saved to your device only when you download it.

If your files contain other people's personal data, the processing you carry out on your device is your responsibility. The How it works page explains how you can check for yourself that your files do not leave your device.

Technical connection data

When you visit the site, the server receives the usual technical data of any web request: IP address, date and time, page requested, browser and operating system and, if any, the page you came from.

Purpose: to deliver the site to you and keep it secure and working properly. We do not use this data to identify you, build profiles or send you advertising.

Legal basis: legitimate interest in providing a secure and operational website (Art. 6.1.f GDPR).

Retention: these logs are kept by our hosting provider, Netlify, for the period set by its own policy and its data processing agreement.

Cookies and storage on your device

Necessary cookies: NEXT_LOCALE, which remembers the language you choose with the site's selector (it is only created when you change language and lasts 12 months), and CookieConsent, set by Cookiebot to store your cookie choice. They contain no data that directly identifies you and are exempt from consent because they are strictly necessary to provide the service you request or to remember a choice you make yourself (Art. 22.2 of Spanish Law 34/2002, LSSI).

Consent management: the cookie banner is provided by Cookiebot (Usercentrics A/S), which records your choice, the date and a consent identifier as proof. Legal basis: compliance with a legal obligation, to be able to demonstrate your consent (Art. 6.1.c GDPR).

Google Tag Manager: we use it to manage the tags on the site. Loading it makes your browser connect to Google's servers, which receive technical data such as your IP address. Legal basis: our legitimate interest in managing the site's tags (Art. 6.1.f GDPR). Any tag loaded through it that uses cookies that are not strictly necessary, such as analytics or advertising cookies, only runs if you consent (Art. 6.1.a GDPR and Art. 22.2 LSSI), and you can withdraw that consent at any time.

You will find the full list of cookies, with their provider, purpose and duration, in the Cookie Policy.

If you write to us

If you contact us by email, we process your address and the content of your message only to reply to you and handle your enquiry.

Legal basis: our legitimate interest in handling the enquiries we receive (Art. 6.1.f GDPR). You can object at any time, as explained in “Your rights”.

Retention: the time needed to handle your enquiry and, afterwards, only for the legal periods in which liabilities could arise.

Recipients: we do not pass this data to third parties.

Voluntary contributions on Ko-fi

If you decide to make a voluntary contribution, you do so on Ko-fi, not on this site. This site only links to the Ko-fi page and loads none of its scripts or forms. Ko-fi and its payment processor process your payment data and whatever else you give them as independent controllers, under their own privacy policy.

The owner does not receive or store your card or bank details. Ko-fi may pass on information about the contribution, such as the amount, the date, the name or alias you gave, your message and, depending on what you choose to provide and the platform's settings, your email address. That data therefore comes from Ko-fi and from your own contribution.

Purpose: to record the contribution, thank you for it where appropriate and meet the tax and accounting obligations that apply.

Legal basis: our legitimate interest in managing the contributions received (Art. 6.1.f GDPR) and compliance with legal obligations (Art. 6.1.c GDPR).

Retention: for the periods required by the applicable tax and accounting rules.

Recipients and providers

Netlify, Inc. provides the site's hosting and acts as data processor. You can read its privacy policy at netlify.com.

Google (Google Tag Manager) and Usercentrics A/S (Cookiebot) provide services we use on the site. If you accept statistics or marketing cookies, the providers of the tags we load may also receive data, as detailed in the cookie declaration.

Ko-fi acts as an independent controller of the data you give it.

We do not sell your data or pass it to other third parties, unless a law requires us to, for example to authorities or courts that request it.

International transfers

Netlify and Google may process data outside the European Economic Area, including in the United States, with the safeguards provided by the GDPR, such as standard contractual clauses or the EU-US Data Privacy Framework. For Ko-fi and for the tags you accept, see the privacy policies of their providers. If you want more information about these safeguards, write to us at [email protected].

Links to other sites

The site links to Ko-fi and other sites, such as GeekNĂłmada. We do not share data with them when the site loads. If you click a link, you leave this site and the processing of your data becomes governed by the policy of the destination site.

Automated decisions and minors

We do not make automated decisions or build profiles.

The site is not aimed at minors and we do not knowingly collect their data. If you are under 14, ask your parents or guardians to be the ones who write to us or make a contribution.

Security

We apply reasonable technical and organisational measures to protect data, such as serving the site over an encrypted connection (HTTPS). The most important measure is one of design: because your files do not leave your device, there are no files of yours to protect on our systems.

Your rights

You can exercise your rights of access, rectification, erasure, restriction of processing, objection and portability by writing to [email protected]. State which right you want to exercise and provide the information needed to identify you in connection with your enquiry or contribution. Exercising them is free of charge.

Where processing is based on our legitimate interest, you can object on grounds relating to your particular situation.

Where processing is based on your consent, such as cookies that are not strictly necessary, you can withdraw it at any time from the cookie declaration, without affecting the lawfulness of the processing carried out before.

We will reply within one month of receiving your request, extendable by two further months if it is particularly complex (Art. 12 GDPR).

Because the site has no accounts, we may not be able to link technical logs to you; if so, we will tell you (Art. 11 GDPR).

If you believe your data is not being handled properly, you can lodge a complaint with the Spanish Data Protection Agency (aepd.es) or with the data protection authority of your country.

Changes to this policy

We may update this policy if the site or the law changes, for example if we add a new provider or type of cookie. We will publish the new version here. Last updated: September 2026.

This text is offered in several languages for convenience. In case of discrepancy, the Spanish version prevails.